cbcvebase.

Gnu Binutils vulnerabilities

286 known vulnerabilities affecting gnu/binutils.

Total CVEs
286
CISA KEV
0
Public exploits
12
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH121MEDIUM150LOW10

Vulnerabilities

Page 9 of 15
CVE-2016-4491P4MEDIUMCVSS 5.5≥ 0, < 2.28-32017-02-24
CVE-2016-4491 [MEDIUM] CVE-2016-4491: The d_print_comp function in cp-demangle The d_print_comp function in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, which triggers infinite recursion and a buffer overflow, related to a node having "itself as ancestor more than once."
osv
CVE-2025-3198P4MEDIUMCVSS 5.5v2.43v2.442025-04-04
CVE-2025-3198 [MEDIUM] CWE-401 CVE-2025-3198: A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by A vulnerability has been found in GNU Binutils 2.43/2.44 and classified as problematic. Affected by this vulnerability is the function display_info of the file binutils/bucomm.c of the component objdump. The manipulation leads to memory leak. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The patch
nvdosv
CVE-2025-11840P4MEDIUMCVSS 5.5v2.452025-10-16
CVE-2025-11840 [MEDIUM] CWE-119 CVE-2025-11840: A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of A weakness has been identified in GNU Binutils 2.45. The affected element is the function vfinfo of the file ldmisc.c. Executing a manipulation can lead to out-of-bounds read. The attack can only be executed locally. The exploit has been made available to the public and could be used for attacks. This patch is called 16357. It is best practice to app
nvdosv
CVE-2025-11494P4MEDIUMCVSS 5.5v2.452025-10-08
CVE-2025-11494 [MEDIUM] CWE-119 CVE-2025-11494: A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sect A vulnerability was found in GNU Binutils 2.45. Impacted is the function _bfd_x86_elf_late_size_sections of the file bfd/elfxx-x86.c of the component Linker. The manipulation results in out-of-bounds read. The attack needs to be approached locally. The exploit has been made public and could be used. The patch is identified as b6ac5a8a5b82f0ae6a4642c
nvdosv
CVE-2025-11414P4MEDIUMCVSS 5.5v2.452025-10-07
CVE-2025-11414 [MEDIUM] CWE-119 CVE-2025-11414: A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function A vulnerability was determined in GNU Binutils 2.45. Affected by this vulnerability is the function get_link_hash_entry of the file bfd/elflink.c of the component Linker. This manipulation causes out-of-bounds read. The attack can only be executed locally. The exploit has been publicly disclosed and may be utilized. Upgrading to version 2.46 addresse
nvdosv
CVE-2025-11081P4MEDIUMCVSS 5.5v2.452025-09-27
CVE-2025-11081 [MEDIUM] CWE-119 CVE-2025-11081: A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_sectio A vulnerability was detected in GNU Binutils 2.45. This issue affects the function dump_dwarf_section of the file binutils/objdump.c. Performing manipulation results in out-of-bounds read. The attack is only possible with local access. The exploit is now public and may be used. The patch is named f87a66db645caf8cc0e6fc87b0c28c78a38af59b. It is sugge
nvdosv
CVE-2018-20651P4MEDIUMCVSS 5.5v2.31.12019-01-01
CVE-2018-20651 [MEDIUM] CWE-476 CVE-2018-20651: A NULL pointer dereference was discovered in elf_link_add_object_symbols in elflink.c in the Binary A NULL pointer dereference was discovered in elf_link_add_object_symbols in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31.1. This occurs for a crafted ET_DYN with no program headers. A specially crafted ELF file allows remote attackers to cause a denial of service, as demonstrated by ld.
nvdosv
CVE-2018-20671P4MEDIUMCVSS 5.5≤ 2.31.12019-01-04
CVE-2018-20671 [MEDIUM] CWE-190 CVE-2018-20671: load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow load_specific_debug_section in objdump.c in GNU Binutils through 2.31.1 contains an integer overflow vulnerability that can trigger a heap-based buffer overflow via a crafted section size.
nvdosv
CVE-2016-4490P4MEDIUMCVSS 5.5≥ 0, < 2.27.51.20161102-12017-02-24
CVE-2016-4490 [MEDIUM] CVE-2016-4490: Integer overflow in cp-demangle Integer overflow in cp-demangle.c in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to inconsistent use of the long and int types for lengths.
osv
CVE-2018-20673P4MEDIUMCVSS 5.5v2.31.12019-01-04
CVE-2018-20673 [MEDIUM] CWE-190 CVE-2018-20673: The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31. The demangle_template function in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.31.1, contains an integer overflow vulnerability (for "Create an array for saving the template argument values") that can trigger a heap-based buffer overflow, as demonstrated by nm.
nvd
CVE-2020-35496P4MEDIUMCVSS 5.5fixed in 2.34vbinutils 2.342021-01-04
CVE-2020-35496 [MEDIUM] CWE-476 CVE-2020-35496: There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacke There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereference. The greatest threat of this flaw is to application availability. This flaw affects binutils versions prior to 2.34.
nvdosv
CVE-2025-69651P4MEDIUMCVSS 5.5≤ 2.462026-03-06
CVE-2025-69651 [MEDIUM] CWE-476 CVE-2025-69651: GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when p GNU Binutils thru 2.46 readelf contains a vulnerability that leads to an invalid pointer free when processing a crafted ELF binary with malformed relocation or symbol data. If dump_relocations returns early due to parsing errors, the internal all_relocations array may remain partially uninitialized. Later, process_got_section_contents() may attempt
nvd
CVE-2025-8224P4MEDIUMCVSS 5.5v2.442025-07-27
CVE-2025-8224 [MEDIUM] CWE-404 CVE-2025-8224: A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerabilit A vulnerability has been found in GNU Binutils 2.44 and classified as problematic. This vulnerability affects the function bfd_elf_get_str_section of the file bfd/elf.c of the component BFD Library. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may
nvdosv
CVE-2018-18606P4MEDIUMCVSS 5.5v2.312018-10-23
CVE-2018-18606 [MEDIUM] CWE-476 CVE-2018-18606: An issue was discovered in the merge_strings function in merge.c in the Binary File Descriptor (BFD) An issue was discovered in the merge_strings function in merge.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in _bfd_add_merge_section when attempting to merge sections with large alignments. A specially crafted ELF allows remote attackers to cause a denial of ser
nvdosv
CVE-2018-18607P4MEDIUMCVSS 5.5v2.312018-10-23
CVE-2018-18607 [MEDIUM] CWE-476 CVE-2018-18607: An issue was discovered in elf_link_input_bfd in elflink.c in the Binary File Descriptor (BFD) libra An issue was discovered in elf_link_input_bfd in elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.31. There is a NULL pointer dereference in elf_link_input_bfd when used for finding STT_TLS symbols without any TLS section. A specially crafted ELF allows remote attackers to cause a denial of service
nvdosv
CVE-2017-15023P4MEDIUMCVSS 5.5v2.292017-10-05
CVE-2017-15023 [MEDIUM] CWE-476 CVE-2017-15023: read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as dist read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, does not properly validate the format count, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ELF file, related to concat_filename.
nvdosv
CVE-2018-19932P4MEDIUMCVSS 5.5≤ 2.312018-12-07
CVE-2018-19932 [MEDIUM] CWE-190 CVE-2018-19932: An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils through 2.31. There is an integer overflow and infinite loop caused by the IS_CONTAINED_BY_LMA macro in elf.c.
nvdosv
CVE-2018-18484P4MEDIUMCVSS 5.5v2.312018-10-18
CVE-2018-18484 [MEDIUM] CWE-674 CVE-2018-18484: An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. Stac An issue was discovered in cp-demangle.c in GNU libiberty, as distributed in GNU Binutils 2.31. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there is a stack consumption problem caused by recursive stack frames: cplus_demangle_type, d_bare_function_type, d_function_type.
nvdosv
CVE-2019-9071P4MEDIUMCVSS 5.5v2.322019-02-24
CVE-2019-9071 [MEDIUM] CWE-674 CVE-2019-9071: An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consump An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a stack consumption issue in d_count_templates_scopes in cp-demangle.c after many recursive calls.
nvdosv
CVE-2016-4488P4MEDIUMCVSS 5.5≥ 0, < 2.27.51.20161102-12017-02-24
CVE-2016-4488 [MEDIUM] CVE-2016-4488: Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, re Use-after-free vulnerability in libiberty allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted binary, related to "ktypevec."
osv
Gnu Binutils vulnerabilities | cvebase